Tom

it seems to be a routing problem: which is the default route ip of your router? I think it is your ISP... A solution could be to use an SSH tunnel from your client to your astlinux system and use it to connect to your router

bye
graziano

PS: if you want to use astlinux as vpn concentrator, it should be the default gateway for your lan or you must configure the correct routing policy on your internal systems


Il 04/10/2012 6.54, Tom Rhodes ha scritto:
The VPN works on iOS 5 and 6 and windows 7 but only from the external client to the astlinux server. I cannot connect to any devices on the same subnet such as the web interface to my router using an IP address or to the outside world using a FQDN or IP address.

The astlinux server is behind a NAT router, only uses one Ethernet interface and the astlinux firewall is disabled. The astlinux server is directly wired to the router.

I have run tcpdump from the astlinux server. When I browse from the client remotely to the router's web page using an ip address I can see the IPSec frames from the outside IP address and SYNs from the IP address of the base IPSec range to the IP address of the router. Both are on the same subnet. I never see a response from the router. Sniffing the wire between the astlinux server and the router, I can see the IPSec frames but I don't see the SYN frames from the astlinux server to the router.

At a minimum, I'd like to be able to connect to devices on the local subnet. I'd eventually like to tunnel through the astlinux server to the outside world.

Have I missed something or is this working as designed?

Thanks
Tom



------------------------------------------------------------------------------
Don't let slow site performance ruin your business. Deploy New Relic APM
Deploy New Relic app performance management and know exactly
what is happening inside your Ruby, Python, PHP, Java, and .NET app
Try New Relic at no cost today and get our sweet Data Nerd shirt too!
http://p.sf.net/sfu/newrelic-dev2dev


_______________________________________________
Astlinux-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/astlinux-users

Donations to support AstLinux are graciously accepted via PayPal to 
[email protected].

--

Graziano Brioschi

Outland s.a.s.
sede operativa:
Via A. Don Rocca, 13
20030, Senago (MI)
tel: 02 9948 6014
mobile: 328 8382622
email: [email protected]
--> U4E <--

------------------------------------------------------------------------------
Don't let slow site performance ruin your business. Deploy New Relic APM
Deploy New Relic app performance management and know exactly
what is happening inside your Ruby, Python, PHP, Java, and .NET app
Try New Relic at no cost today and get our sweet Data Nerd shirt too!
http://p.sf.net/sfu/newrelic-dev2dev
_______________________________________________
Astlinux-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/astlinux-users

Donations to support AstLinux are graciously accepted via PayPal to 
[email protected].

Reply via email to